Accepted mozilla 2:1.7.11-0ubuntu3 (source)
Martin Pitt
martin.pitt at ubuntu.com
Mon Sep 12 05:50:03 CDT 2005
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 12 Sep 2005 12:42:44 +0200
Source: mozilla
Binary: mozilla mozilla-calendar mozilla-dom-inspector libnspr4 mozilla-js-debugger mozilla-browser libnss3 libnspr-dev mozilla-chatzilla mozilla-psm mozilla-mailnews libnss-dev mozilla-dev
Architecture: source
Version: 2:1.7.11-0ubuntu3
Distribution: breezy
Urgency: low
Maintainer: Takuo KITAME <kitame at debian.org>
Changed-By: Martin Pitt <martin.pitt at ubuntu.com>
Description:
libnspr-dev - Netscape Portable Runtime library - development files
libnspr4 - Netscape Portable Runtime Library
libnss-dev - Network Security Service Libraries - development
libnss3 - Network Security Service Libraries - runtime
mozilla - The Mozilla Internet application suite - meta package
mozilla-browser - The Mozilla Internet application suite - core and browser
mozilla-calendar - Todo organizer,calendar and reminder,integrated with Mozilla suit
mozilla-chatzilla - Mozilla Web Browser - irc client
mozilla-dev - The Mozilla Internet application suite - development files
mozilla-dom-inspector - A tool for inspecting the DOM of pages in Mozilla.
mozilla-js-debugger - JavaScript debugger for use with Mozilla
mozilla-mailnews - The Mozilla Internet application suite - mail and news support
mozilla-psm - The Mozilla Internet application suite - Personal Security Manage
Changes:
mozilla (2:1.7.11-0ubuntu3) breezy; urgency=low
.
* SECURITY UPDATE: Fix remote buffer overflow.
* Add debian/patches/security-idn-normalization:
The presence of a hostname of all dashes (and a rather long one at that)
causes the NormalizeIDN call in nsStandardURL::BuildNormalizedSpec to
return true but set encHost to the empty string. This means we append 0
to approxLen, but later on append the long string of dashes to the buffer
instead.
* References:
CAN-2005-2871
https://bugzilla.mozilla.org/show_bug.cgi?id=307259
Files:
c603bd7b85337e60702717ff2a66fe1b 1070 web optional mozilla_1.7.11-0ubuntu3.dsc
c3c9e8dad97eddea9902abc0ec44b996 439421 web optional mozilla_1.7.11-0ubuntu3.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
iD8DBQFDJVw0DecnbV4Fd/IRAjcGAKDa7BOL5lt4svmITSm98MT14B0XfwCdGG0F
Dddn0ESe6ktPnmcaS1blIUA=
=AXav
-----END PGP SIGNATURE-----
Accepted:
mozilla_1.7.11-0ubuntu3.diff.gz
to pool/main/m/mozilla/mozilla_1.7.11-0ubuntu3.diff.gz
mozilla_1.7.11-0ubuntu3.dsc
to pool/main/m/mozilla/mozilla_1.7.11-0ubuntu3.dsc
More information about the breezy-changes
mailing list